Thomas Gerbet
34 exploits
Active since Nov 2017
GitPHP by xiphux - Command Injection
CVSS 9.8
Tuleap <12.11.99.25, <12.11-2 - XSS
CVSS 5.4
Tuleap <11.16.99.173 & <11.16-6 & <11.15-8 - SQL Injection
CVSS 7.2
Tuleap <11.16.99.173 & <11.16-6 & <11.15-8 - SQL Injection
CVSS 8.8
Tuleap <11.17.99.144 - SQL Injection
CVSS 8.8
Tuleap <11.17.99.146 - SQL Injection
CVSS 8.8
Tuleap < 13.2.99.31 and 13.1-1-13.1-5 - LDAP Injection via User ldap_id Attribute
CVSS 6.7
Tuleap < 13.2.99.83 and 13.1-1-13.1-5 - LDAP Injection via User ldap_id Attribute
CVSS 6.7
Tuleap < 13.2.99.155 and 13.1-1-13.1-6 - Authenticated SQL Injection in CVS Repository Commit Search
CVSS 8.8
Tuleap < 13.9.99.111 and 13.8.0-13.8.6 - Authenticated SQL Injection via Tracker Report Query
CVSS 7.2
Tuleap <14.10.99.4-14.9.5 - Code Injection
CVSS 5.4
Tuleap <14.11.99.28 & <14.10-6 & <14.11-3 - Info Disclosure
CVSS 6.5
Tuleap < 14.10-7 and < 14.11.99.82 - Stored Cross-Site Scripting in Card Fields
CVSS 4.8
Tuleap <15.2.99.103 - Code Injection
CVSS 5.4
Tuleap <15.5.99.76 - Info Disclosure
CVSS 5.4
libarchive < 3.7.4 - Remote Code Execution via Heap-based Buffer Overflow
CVSS 7.8
Tuleap 14.11.99.34-15.7.99.5, 14.12-1-14.12-5 - Unauthenticated Information Disclosure and Data Deletion
CVSS 7.6
Tuleap < 15.8-5 and < 15.9.99.97 - Improper Authorization
CVSS 4.3
Tuleap < 15.12-6 and < 15.13.99.37 - Cross-Site Scripting via Artifact Link Type Forward Label
CVSS 4.8
Tuleap < 16.3-10 and < 16.4.99.1740067916 - Cross-Site Scripting via Tracker Name in Semantic Timeframe Deletion Message
CVSS 4.8
Tuleap <16.4.99.1740492866, <16.3-11 - Info Disclosure
CVSS 5.3
Tuleap < 16.3-11 and < 16.4.99.1740567344 - Cross-Site Scripting in Mass Email Feature
CVSS 4.1
Tuleap < 16.3-11 and < 16.4.99.1740414959 - Cross-Site Request Forgery in Tracker Fields Administrative Operations
CVSS 4.6
Tuleap < 16.4-8 and < 16.5.99.1741784483 - Cross-Site Request Forgery in Tracker Artifact Submission
CVSS 4.6
Tuleap < 16.4-8 and < 16.5.99.1742562878 - Cross-Site Scripting via RSS Feed Widget
CVSS 4.8